Aggregator
PNG中潜伏.NET攻击载体,红队借图突围EDR防线
CVE-2002-0419 | Microsoft IIS up to 5.1 NTLM Authentication information disclosure (EDB-21313 / Nessus ID 11871)
离开格力后,王自如首开直播回应;比亚迪回应「车圈恒大」风波;传 Meta 百亿美元投资 Scale AI | 极客早知道
CVE-2007-1675 | IBM Lotus Domino up to 6.5.5 Authentication Mechanism nimap.exe EasyBee memory corruption (Nessus ID 24903 / ID 74235)
CVE-2007-1680 | Yahoo! Messenger 8.0/8.0 2005.1.1.4/8.0.0.863/8.1.0.209/8.1.0.239 ActiveX Control yacscom.dll createandjoinconference stack-based overflow (VU#388377 / Nessus ID 24913)
CVE-2007-1681 | Sun Solaris 10.0 Java Web Console format string (Nessus ID 25072 / ID 86760)
CVE-2007-1689 | Symantec Norton Personal Firewall 2004 ActiveX Control islalert.dll Get memory corruption (VU#983953 / ID 34055)
CVE-2007-1683 | IncrediMail IMMenuShellExt ActiveX control ActiveX Control imshext.dll dowebmenuaction stack-based overflow (VU#906777 / EDB-3877)
Quiet Riot: enumeration tool for scalable, unauthenticated validation of AWS principals
Quiet Riot An enumeration tool for scalable, unauthenticated validation of AWS principals; including AWS Account IDs, root e-mail addresses, users, and roles. Featureploitation Limits Throttling After performing extensive analysis of scaling methods using the...
The post Quiet Riot: enumeration tool for scalable, unauthenticated validation of AWS principals appeared first on Penetration Testing Tools.
KubeAPI-Inspector: Discover the secrets hidden in apis
A tool specifically designed for Kubernetes environments aims to efficiently and automatically discover hidden vulnerable APIs within clusters. It reveals and demonstrates a common error through a workshop format, which could lead to API...
The post KubeAPI-Inspector: Discover the secrets hidden in apis appeared first on Penetration Testing Tools.